Junglewise Threat Intelligence

CVE-2026-69275: Microsoft Windows Kernel Streaming WOW Thunk Service Driver use-after-free

CVE-2026-69275 · Severity: high · CVSS 7 · Published 2026-09-08

Executive brief

A use-after-free vulnerability exists in the Windows Kernel Streaming WOW Thunk Service Driver, a core Windows component responsible for audio and multimedia stream handling. An authenticated attacker with local system access can exploit this flaw to elevate their privileges, potentially gaining full control of the affected system.